CVE-2023-41612

Victure PC420 1.1.39 was discovered to use a weak encryption key for the file enabled_telnet.dat on the Micro SD card.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:govicture:pc420_firmware:1.1.39:*:*:*:*:*:*:*
cpe:2.3:h:govicture:pc420:-:*:*:*:*:*:*:*

History

14 Apr 2025, 15:09

Type Values Removed Values Added
CPE cpe:2.3:h:govicture:pc420:-:*:*:*:*:*:*:*
cpe:2.3:o:govicture:pc420_firmware:1.1.39:*:*:*:*:*:*:*
First Time Govicture
Govicture pc420 Firmware
Govicture pc420
References () https://www.trevorkems.com/operation-big-brother-iot-camera/ - () https://www.trevorkems.com/operation-big-brother-iot-camera/ - Third Party Advisory

20 Sep 2024, 14:35

Type Values Removed Values Added
CWE CWE-798
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

20 Sep 2024, 12:30

Type Values Removed Values Added
Summary
  • (es) Se descubrió que Victure PC420 1.1.39 utiliza una clave de cifrado débil para el archivo enabled_telnet.dat en la tarjeta Micro SD.

18 Sep 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-18 18:15

Updated : 2025-04-14 15:09


NVD link : CVE-2023-41612

Mitre link : CVE-2023-41612

CVE.ORG link : CVE-2023-41612


JSON object : View

Products Affected

govicture

  • pc420
  • pc420_firmware
CWE
CWE-798

Use of Hard-coded Credentials